4 ms·
This post seems outdated considering these more recent HN posts: Disabling Intel ME 11 via undocumented mode (ptsecurity.com) https://news.ycombinator.com/item
by moppl 9y ago
This post seems outdated considering these more recent HN posts:
Disabling Intel ME 11 via undocumented mode (ptsecurity.com)
https://news.ycombinator.com/item?id=15116719 https://news.ycombinator.com/item?id=15116719
How to hack a turned-off computer, or running unsigned code in Intel ME (blackhat.com)
https://news.ycombinator.com/item?id=15298833 https://news.ycombinator.com/item?id=15298833
Personally I am extremely curious about the upcoming blackhat presentation. If it is really true this might be very big.
- cyphar 9y agoBeing able to run unsigned code in ME might allow (depending on how the exploit works) for either a replacement of the ME firmware entirely or just doing a disable that exceeds even the HAP bit (and the rest of magic that me_cleaner does to remove different sections of the firmware). But we'll have to wait for the slides, I'm hoping there's something really useful there for the coreboot community.
- moppl 9y agoWell, it might also allow for the ultimate rootkit hack of x86 platforms...
- craftyguy 9y agoWell, it is technically a little outdated. The article OP posted is from April of this year, and the one you linked to was posted in August.
- j_s 9y agoIn addition to those two discussions (Aug 2017, 218 comments) & (Sep 2017, 239 comments), the following came up this week: Disabling the Intel Management Engine | https://news.ycombinator.com/item?id=15444607 https://news.ycombinator.com/item?id=15444607 (Oct 2017, 219 comments) If nothing else, the BlackHat talk has stirred up interest in the Intel ME which had remained in relative obscurity for quite some time.